Wind River Support Network

HomeDefectsLIN6-13356
Fixed

LIN6-13356 : CVE-2017-12132 fix on wrlinux6

Created: Aug 8, 2017    Updated: Dec 3, 2018
Resolved Date: Sep 24, 2017
Found In Version: 6.0.0.34
Fix Version: 6.0.0.35
Severity: Standard
Applicable for: Wind River Linux 6
Component/s: Toolchain, Userspace

Description

Customer request the fix for CVE-2017-12132 on wrlinux6.

https://nvd.nist.gov/vuln/detail/CVE-2017-12132 
The DNS stub resolver in the GNU C Library (aka glibc or libc6) before version 2.26, when EDNS support is enabled, will solicit large UDP responses from name servers, potentially simplifying off-path DNS spoofing attacks due to IP fragmentation.

Other Downloads


Live chat
Online